T
Z
F
HREE
ONE
IREWALL
S
CENARIO
1. The network has a network of nodes, a mail server, a web server, and access to
the internet using a leased line with a static IP.
2. The LAN nodes are designated and placed in the trusted zone.
3. The mail server and web server need to be accessed from the Internet and the
local LAN. Since these servers are exposed in some form to the Internet, they are
placed in the DMZ.
4. All traffic going out to the Internet is subject to NAT.
Figure 23: Three Zone Firewall Network Topology
CLI Configuration Guide
Beta
Except on the first page, right running head:
Heading1 or Heading1NewPage text (automatic)
E
XAMPLE
Alcatel-Lucent
Zone Configuration
699
Beta